suno
suno1mo ago
New

Senior / Staff Application Security Engineer

United StatesUnited States·Bostonfull-timesenior
EngineeringSecurity Engineer
0 views0 saves0 applied

Quick Summary

Key Responsibilities

threat-model features and services, and drive remediation of the most significant risks. Secure the application layer against the vulnerabilities that matter most — injection,

Technical Tools
EngineeringSecurity Engineer

We're building the world's first creative entertainment platform, where the entire world can feel the joy and fulfillment of making music. Music is for everyone: Our users include everyone from grandmothers creating songs for their loved ones, to Grammy winners using Suno Studio, our power tool, to make the most popular hits in the world.

Building the future of entertainment requires ambition. The pace is fast, the problems are hard, and the work demands ownership and intensity. For the right people, it’s incredibly rewarding: a chance to shape a new medium, work with a small team that cares deeply about quality, make music, drink too much coffee, and build something that millions of people use to express themselves in ways that were never before possible.

Suno is the fastest growing consumer entertainment company and the leader in AI music. We are backed by leading investors including Bond Capital, Menlo Ventures, Lightspeed Venture Partners, IVP, Forerunner, Union Square Ventures, Alkeon, Quiet, Matrix Partners, Schroders Capital and, NVentures (venture arm of NVIDIA).

About the Role

~1 min read

We’re looking for a Senior / Staff Application Security Engineer to own the security of how our product is built. You’ll be the person who makes sure our code, APIs, and services are secure by design — threat-modeling the product, hardening the application layer, and building the AppSec practice from the ground up.

Responsibilities

~1 min read
  • →

    Execute application security end to end: threat-model features and services, and drive remediation of the most significant risks.

  • →

    Secure the application layer against the vulnerabilities that matter most — injection, broken authentication and authorization, and insecure APIs.

  • →

    Build and run a secure SDLC: code-review guardrails, SAST/DAST, dependency and supply-chain security, secrets management, and pre-production testing.

  • →

    Harden authentication, authorization, and session/identity handling across the product.

  • →

    Secure the AI-specific application surface — model and inference endpoints, prompt and input handling, and the new classes of vulnerability that come with shipping generative features.

  • →

    Partner with product and platform engineering to design security in early and raise the security bar across the codebase.

  • →

    Set the standard for how engineering reasons about and ships secure code.

What We Offer

~1 min read
✓Applicants must be eligible to work in the US.
✓This role requires working onsite at one of our three offices.
✓$230,000 to 330,000

Location & Eligibility

Where is the job
Boston, United States
On-site at the office
Who can apply
US

Listing Details

Posted
August 4, 2026
First seen
September 25, 2026
Last seen
September 26, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
19%
Scored at
September 26, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

sunoSenior / Staff Application Security Engineer